Openflow and SDN - RedIRIS

Openflow and SDN - RedIRIS

Openflow Y SDN Fundamentos de Open Networking. Soluciones Open Flow Miguel Angel Rodrguez Fernndez [email protected] Agenda ARQUITECTURA SDN INTRODUCCION a Openflow Casos Prcticos 2 Copyright 2009 Juniper Networks, Inc. www.juniper.net ARQUITECTURA SDN 3 Copyright 2009 Juniper Networks, Inc. www.juniper.net En la actualidad:Cajas cerradas y Protocolos distribuidos Ap Ap p p Ap Ap p p Ap Ap p

p Operating System System Specialized Specialized Packet Packet Forwarding Forwarding Hardware Hardware Ap Ap p p Ap Ap p p Ap Ap p p Ap Ap p p Ap Ap p p Ap Ap

p p Ap Ap p p Ap Ap p p Operating Operating System System Specialized Packet Forwarding Forwarding Hardware Hardware Ap Ap p p Operating Operating System System Specialized Packet Forwarding Forwarding Hardware Hardware Ap

Ap p p Ap Ap p p Ap Ap p p Operating System System Specialized Packet Packet Specialized Forwarding Forwarding Hardware Hardware Operating Operating System System Specialized Specialized Packet Packet Forwarding Forwarding Hardware Hardware 4

Copyright 2009 Juniper Networks, Inc. 4 www.juniper.net Un Acercamiento a Software Defined Networking App App App Network Operating System Ap Ap p p Ap Ap p p Ap Ap p p Operating Operating System Specialized Specialized Packet Packet Forwarding Forwarding Hardware Hardware

Ap Ap p p Ap Ap p p Ap Ap p p Ap Ap p p Specialized Specialized Packet Packet Forwarding Forwarding Hardware Hardware Ap Ap p p Ap Ap p p Ap

Ap p p Ap Ap p p Operating Operating System System Specialized Specialized Packet Packet Forwarding Hardware Hardware Ap Ap p p Operating Operating System System Ap Ap p p Ap Ap p p

Ap Ap p p Operating Operating System Specialized Specialized Packet Packet Forwarding Forwarding Hardware Hardware Operating Operating System 5 Specialized Specialized Packet Packet Copyright 2009 Juniper Networks, Inc. Forwarding Forwarding Hardware www.juniper.net 5 El Concepto Software-defined Network 3. Well-defined open API App

App App 2. At least one good operating system Extensible, possibly open-source Network Operating System 1. Open interface to hardware Simple Packet Forwarding Hardware Simple Packet Forwarding Hardware Simple Packet Forwarding Hardware 6 Simple Packet Forwarding Hardware Simple Packet Forwarding Hardware Copyright 2009 Juniper Networks, Inc. www.juniper.net

6 Software Defined Networking (SDN) Los principales objetivos de SDN Abstraer los elementos de la Red desde las Aplicaciones. Control y Gestin centralizadad de los dispositivos de red de diferentes fabricantes. Tener una Red abierta que permita ser programable y crear servicios de forma sencilla. SDN es una arquitectura que divide el plano de conmutacin y permite que sea programable de una forma directa. LAS REDES ABIERTAS ADOPTARAN MAYORES INNOVACIONES. 7 Copyright 2009 Juniper Networks, Inc. www.juniper.net Arquitectura SDN 8 Copyright 2009 Juniper Networks, Inc. www.juniper.net Introduccin a Openflow 10 Copyright 2009 Juniper Networks, Inc. www.juniper.net Aproximacin a openflow

Plano de Control separado del plano de conmutacin Plano de Control Centralizado. OpenFlow controller(La plataforma). Lgicamente centralizada y fisicamente distribuida. Plano de conmutacin distribuido. OpenFlow switches (Pueden ser routers,firewalls). No es necesario tener protocolos de routing . Software (kernel, hypervisor, userspace), Hardware (merchant silicon, ASICs, OpenFlow optimized ASICs) OpenFlow es el protocolo entre el plano de control y de conmutacin. 11 Copyright 2009 Juniper Networks, Inc. www.juniper.net Plano de Control centralizado y conmutacin distribuido. OpenFlow controller Plano de control centralizado OpenFlow protocol OpenFlow switch Plano de conmutacin 12

Copyright 2009 Juniper Networks, Inc. www.juniper.net Arquitectura de un openflow controller Applications Applications Replication Replication Scheduler Scheduler Data Data Center Center Multi Multi Tenancy Tenancy Load Load Balancer Balancer API API (not (not standard) standard) Basic Basic Services Services Inventory Inventory Topology Topology discovery discovery

Infrastructure Infrastructure Path Path computation computation Event Event dispatching dispatching GUI GUI Protocol Protocol Engines Engines OpenFlow OpenFlow CLI CLI OF-Config OF-Config FlowVisor FlowVisor (network (network partitioning) partitioning) 13 Copyright 2009 Juniper Networks, Inc. www.juniper.net EVOLUCION A OFN OpenFlow Controller

Distributed control plane 14 Control Process Secure Channel Simple Controller Forwarding Table Forwarding/Flow Dispatch Table Traditional Router/Switch Copyright 2009 Juniper Networks, Inc. www.juniper.net OpenFlow Router/Switch Controller Ejemplo de OpenFlow Software Layer PC OpenFlow Client Flow Table Hardware Layer MAC

src MAC dst IP Src IP Dst TCP TCP Action sport dport * * * 5.6.7.8 * port 1 15 port 2 * port 3 Copyright 2009 Juniper Networks, Inc. 5.6.7.8

port 1 port 4 www.juniper.net 1.2.3.4 15 TIPOS DE MENSAJES Tres tipos de mensajes y cada mensaje con mltiples subtipos.:, controller-to-switch, asynchronous y symmetric. Controller-to-switch messages are initiated by the controller and used to directly manage or inspect the state of the switch. Features (query capabilities), modify-state(add/delete/modify flow/group entry), read-state, packet-out Asynchronous messages are initiated by the switch and used to update the controller of network events and changes to the switch state. Such as ow-removed, packet-in, port-status Symmetric messages are initiated by either the switch or the controller and sent without solicitation. hello, echo (request/reply), experimenter 16 Copyright 2009 Juniper Networks, Inc. www.juniper.net OpenFlow Basics Flow Table Entries (1.0)

Rule Switch Port Action Stats 1. ForwardPacket packet +tobyte zerocounters or more ports 2. Encapsulate and forward to controller 3. Send to normal processing pipeline 4. Modify Fields 5. Any extensions you add! VLAN ID VLAN MAC pcp src MAC dst Eth type IP Src IP Dst

IP ToS IP Prot + mask what fields to match 17 Copyright 2009 Juniper Networks, Inc. www.juniper.net 17 L4 sport L4 dport Examples (1/2) Switching Switch MAC Port src * MAC Eth dst type 00:1f:.. * * VLAN IP ID Src IP

Dst IP Prot TCP TCP Action sport dport * * * * IP Dst IP Prot TCP TCP Action sport dport * * port6 Flow Switching Switch MAC Port src

MAC Eth dst type port3 00:20.. 00:1f.. 0800 VLAN IP ID Src vlan1 1.2.3.4 5.6.7.8 4 17264 80 port6 Firewall Switch MAC Port src * 18 * MAC Eth dst type * * VLAN IP ID Src IP Dst

IP Prot TCP TCP Action sport dport * * * * * Copyright 2009 Juniper Networks, Inc. 22 www.juniper.net 18 drop Examples (2/2) Routing Switch MAC Port src * * MAC Eth dst

type * * VLAN IP ID Src IP Dst * 5.6.7.8 * * VLAN IP ID Src IP Dst IP Prot vlan1 * * * TCP TCP Action sport dport port6,

port7, * * port9 * IP Prot TCP TCP Action sport dport * port6 VLAN Switching Switch MAC Port src * 19 * MAC Eth dst type 00:1f.. * Copyright 2009 Juniper Networks, Inc. www.juniper.net 19 OpenFlow v1.0 Switch

OpenFlow v1.0 Switch sw hw 20 Secure Channel OpenFlow Protocol SSL/TLS Flow Table Copyright 2009 Juniper Networks, Inc. www.juniper.net OpenFlow Controller OpenFlow v1.1 Switch OpenFlow v1.1 Switch OpenFlow Protocol Secure Channel Flow Table Flow Table SSL/TLS

Group Table Pipeline 21 Copyright 2009 Juniper Networks, Inc. www.juniper.net OpenFlow Controller OpenFlow v1.1 Switch OpenFlow v1.1 Switch OpenFlow Protocol Secure Channel Flow Table Flow Table SSL/TLS Group Table Table Pipeline 22 Copyright 2009 Juniper Networks, Inc.

www.juniper.net OpenFlow Controller CASOS PRACTICOS 23 Copyright 2009 Juniper Networks, Inc. www.juniper.net Google 24 Keynote at Open Networking Symposium 2012 Urs Hlzle, Senior Vice President Technical Infrastructure Google deployed OpenFlow in I-Scale network In production to connect all Google datacenters Replaced traditional routing protocols Google built OpenFlow switches themselves (but will buy if available) Cost savings (e.g. 100% link utilization, easier management) New opportunities http://www.youtube.com/watch?v=VLHJUfgxEO4 Copyright 2009 Juniper Networks, Inc.

www.juniper.net Data center interconnect wan Openflow instead of routing protocols Logically centralized OpenFlow controller OpenFlow switch no routing protocols 25 Copyright 2009 Juniper Networks, Inc. www.juniper.net Data center con Arquitectura de SDN Centralized Orchestration Virtualized storage Virtualized services Physical IP Fabric Virtualized Network Virtualized Compute 26 Copyright 2009 Juniper Networks, Inc. www.juniper.net Multi-tenancy using overlay networks

Virtual machine Virtual switch Hypervisor Overlay tunnel 27 Copyright 2009 Juniper Networks, Inc. www.juniper.net Virtualized services Virtual firewall service 28 Copyright 2009 Juniper Networks, Inc. www.juniper.net centralized orchestration OF compute, storage, and network Centralized Orchestration Compute Storage Network OpenFlow The IP fabric was not touched Posicionamiento de SDN Juniper is the recognized leader of the network programmability movement, which is the conceptual foundation underlying the SDN approach. Long before the term SDN was coined, our disruptive network architectures were built on the premise of using

innovative software to give customers unprecedented levels of flexibility and control, with an end goal of transforming the economics and experience of networking. By simultaneously simplifying and opening up the network, Juniper pioneered the core capabilities and concepts behind SDNs. .. . Open network Technologies FOR Innovation Network-aware Apps OSS/BSS Topology Client Path Client SNMP NETCONF SYSLOG Juniper and Custom Space UIs / Workflows HTTP RESTful Web Services Juniper and Custom Application APIs Network Orchestration ALTO server Any OF controller Junos Space SDK Junos Space (Orchestration, Management, Monitoring Plane)

BGP-TE Common Common Interfaces ALTO ALTO OpenFlow OpenFlow OpenFlow (extensible) PCP PCE Junos SDK: Automation Network Devices DMI Junos Control Plane (Routing (Routing Engine) Engine) Custom Custom Custom Custom Packet Packet Apps + APIs Processing Apps + APIs Common APIs, RE APIs, Services APIs, Remote (VE) APIs

Junos Service Plane (Service (Service Engine) Engine) Junos Junos Data Data Plane Plane (Packet (Packet Forwarding Forwarding Engine) Engine) Juniper Custom Silicon Juniper Platform Element Custom Custom Apps Apps + + APIs APIs on any OS Juniper Application Element Junos Virtual Plane (Virtual (Virtual Engine Engine Environment) Environment) GRACIAS. PREGUNTAS

Recently Viewed Presentations

  • CPS Departmental Presentation Education Department Mission of the

    CPS Departmental Presentation Education Department Mission of the

    Teacher-in-Residence Program. The Teacher-in-Residence Program is an intensively supervised and mentored residency program for prospective teachers during their senior year clinical experience that refines their professional practice skills and helps them gain the teaching experience needed to demonstrate competence as...
  • Experiences of Asylum Seekers and Refugees in Wales

    Experiences of Asylum Seekers and Refugees in Wales

    Dr Ashra Khanom, Research Fellow, (Swansea University) for the HEAR team 3rd October 2019 * * Background Sanctuary in Wales Long history of welcome in Wales for those fleeing persecution/war. Asylum seekers have been dispersed to Wales from other parts...
  • STATE ACCOUNTABILITY Update 2015 PowerPoint created by Elvia

    STATE ACCOUNTABILITY Update 2015 PowerPoint created by Elvia

    PowerPoint created by Elvia Noriega, Richardson ISD. Outline. ... # Test Reading + # Test Algebra I ... Once a campus is on the PEG list it there for at least TWO years. What does it mean for me? Performance...
  • Introduction to Visual Art

    Introduction to Visual Art

    Today - review purposes - elements of art. Tuesday - Finish elements - elements art project. Wednesday - Principles of design. Thursday - Art criticism. Friday - Music basics. Elements of Art. Line. An element of art that is the...
  • Your Health Triangle - Montgomery Township School District

    Your Health Triangle - Montgomery Township School District

    Choose a symbol to represent all of your "yes" answers. Graphing Your Results For example, if you like softball/baseball, you can use: Graphing Your Results Use your symbols to form a Health Triangle to represent your scores. Label each side....
  • About University of Maryland University College

    About University of Maryland University College

    Testing and validating assumptions How to manage major crises and emergencies Textbooks and lectures do not capture the dynamic, time-sensitive, context-dependent, multi-disciplinary nature of the emergency/crisis scenarios.
  • EXPRESIÓN A TRAVÉS DE LA MUJER - WordPress.com

    EXPRESIÓN A TRAVÉS DE LA MUJER - WordPress.com

    EXPRESIÓN A TRAVÉS DE LA MUJER"Rol de la mujer en el pasado" PINTORES. Zurbarán
  • Cultural Exchange - Weebly

    Cultural Exchange - Weebly

    Feudal JapanSamurai: Rival lords in Japan surrounded themselves with body guards called Samurai. They lived according the demanding code, Bushido. They were expected to show reckless courage, reverence for the gods, fairness, and generosity toward those who are weaker than...